6
Secure Your Remote Applications for the Multicloud Era

Secure Your Remote Applications for the Multicloud Era

  • Upload
    others

  • View
    3

  • Download
    0

Embed Size (px)

Citation preview

Page 1: Secure Your Remote Applications for the Multicloud Era

Secure Your Remote Applications for the

Multicloud Era

Page 2: Secure Your Remote Applications for the Multicloud Era

Secure Your Remote Applicationsfor the Multicloud Era

In Summary• Public cloud infrastructure offers compelling value to corporations

– now annualized in excess of $50 BN with growth rates from 20%to 40%+ reported amongst providers.

• Enterprises are recognizing the value of security expertise of publiccloud service providers (CSPs) – CSP business depends on it. Donecorrectly, applications such as visual Windows or Linux applications,graphics applications or legacy applications delivered from publiccloud infrastructure might well be more secure than thosedelivered on-premises.

• CSP lock-in is a legitimate concern with vendors actively competingfor advantage – traditional VDI tools suffer weak feature parityacross cloud platforms which limits freedom of choice.

‘Seamless migration demands a seamless

management architecture’

A Fresh ApproachTeradici Cloud Access Manager takes a new approach to orchestrationand entitlement, offering a SaaS service that interacts with innovativeaccess hubs in your deployment; facilitating ultra-secure PCoIP®connections between users and workstation resources anywhere.Cloud Access Manager is included with Cloud Access subscriptions andleverages modern DevOps practices to unwind management complexityand reduce total cost of ownership (TCO). The service works in tandemwith cloud-independent Connectors deployed in the enterprise tofacilitate ultra-secure PCoIP connections - from PCoIP Clients anywhere.Traditional VDI tools, on the other hand, comprise a complexity ofmanagement and connection broker components with on-premisesserver-centric dependencies. Scaling to the public cloud entails a toughchoice between adding layers or taking on additional products; both ofwhich increase complexity and inflate TCO.

* Sources: IBM (April 2019) and Gartner (April 2019) respectively

Cost of an average breach in 2019*

security incidents on public clouds than

traditional datacentersthru 2020*

Page 3: Secure Your Remote Applications for the Multicloud Era

Secure Your Remote Applicationsin the Multicloud Era

for the Multicloud EraOne Solution, Any ScenarioPCoIP technology has long been adopted as the remote solution of choice for secure desktops andturnkey workflows in government, finance, healthcare, higher education, CAD and entertainmentindustries. Teradici Cloud Access deployments using PCoIP technology gain significantly from thecapabilities of Cloud Access Manager, whether on AWS, Google Cloud, Microsoft Azure, on-premises, ora hybrid combination

Benefits of Using Teradici Cloud Access Manager:• Configure machine entitlements across multiple facilities, regions or even different public

clouds from a single console.• Align OPEX with business demands by effortlessly scaling resources up or down.• Manage cloud consumption by automatically deallocating unused processing resources.• Improve administrative efficiency by automating provisioning Windows or Linux virtual

machines• Enable highly secure access for offsite users without the VPN endpoint complexities.• Isolate deployments based on access policy, disaster recovery or sandboxing objectives

FIG. 1 Cloud Access Multicloud Architecture

Teradici

PCoIP

SECURED REMOTE APPS AND WORKFLOWS

PCoIPPCoIP

VIRTUALIZED ON-PREMISESPUBLIC CLOUD NON-VIRTUALIZED

ON-PREMISES

OFFSITE

OUT-OF-REGION

Included with Cloud Access

subscriptions

CLOUD ACCESS CONNECTOR

Page 4: Secure Your Remote Applications for the Multicloud Era

Secure Your Remote Applicationsin the Multicloud Era

FEATURE DESCRIPTION

Machine Entitlement Provide user assignment based on Active Directory (AD) groups

Health Monitor Live indication of machine status, including ON, OFF and IN PROGRESS; Quick access to latest log messages

Machine Provisioning Service Customize machine templates within the Management Interface; provisioning tools and more*

Power ManagementTurn virtual machines on or off right from the Management Interface to minimize consumption fees; Optional auto-power feature turns off inactive machines*

Cloud Access ConnectorCloud Access Connector is an easily installed access hub in your environment thatreduces your internal management footprint. In addition to facilitating secureconnections between PCoIP Clients and remote application resources, the Connectorprovides NAT services for external users which eliminates VPN endpoint complexity.The Connector operates with Teradici Cloud Access Manager service to enforce userauthentication and authorization policies for remote application access.

FEATURE DESCRIPTION

Multicloud Support AWS, Google Cloud, Microsoft Azure, VMware ESXi, Nutanix AHV, KVM* and non-virtualized

LDAPS IntegrationSupports redundant on-premises domain controllers, Microsoft Active Directory (AD) services, AWS Directory, Azure AD and Google Cloud Directory

RADIUS Integration Get multifactor authentication (MFA) via on-premises RADIUS server or your choice of Identity Provider (IdP)

NAT Gateway Incorporates the PCoIP Security Gateway, a NAT service trusted by enterprises worldwide.

* Consult docs.teradic.com for latest support details

Cloud Access Manager Admin ConsoleCloud Access Manager Admin Console is a browser interface supporting TeradiciCloud Access Manager. This simple console puts delivery of a highly-scalable andcost-effective Cloud Access Software deployment at your fingertips – so you canmanage your entitlements, cloud consumption costs and system health from asingle interface.

cam.teradici.com

Page 5: Secure Your Remote Applications for the Multicloud Era

Secure Your Remote Applicationsin the Multicloud Era

Futureproofed ScalabilityCloud Access Manager anticipates your future connection scenarios, allowing you to extend yourcapabilities from on-premises to cloud-based visual applications or hybrid scenarios at your own paceusing a consistent simple topology fully supported under your existing Cloud Access subscription.

REMOTE APPLICATIONS

ON-PREMISES

PCoIP

Auth

REMOTE APPLICATIONS

ON-PREMISESLAN USER WAN USER

Auth

PCoIP

PCoIP

FIG. 2 Connection Scenarios

REMOTE APPLICATIONS

Auth

REMOTE APPLICATIONS

PCoIP

PCoIP

Auth

PCoIP

ON-PREMISES

OUT OF REGION USER LAN USERCLOUD USER

LAN WAN

HYBRIDPUBLIC CLOUD

Authentication & Authorization[TCP:443]

Encrypted PCoIP Session[TCP/UDP:4172]

Auth

PCoIP

Auth

Page 6: Secure Your Remote Applications for the Multicloud Era

Secure Your Remote Applicationsin the Multicloud Era

Get Started TodayTeradici Cloud Access Software is available for Windows or Linux platforms. You can install thesoftware on physical, virtualized or cloud-based remote workstations. Follow the link below to requesta free trial today! http://connect.teradici.com/cas-demo

Teradici Cloud Access Manager is now available for AWS, Google Cloud, Microsoft Azure, VMwareESXi, Nutanix AHV or non-virtualized workstations. To deploy the solution on-premises, you need anUbuntu 18.04 server to host the Cloud Access Connector. To deploy the solution in a public cloud,bring your own public cloud subscription – Visit the Teradici website for a demo or to request a trial:http://connect.teradici.com/contact-us

Teradici Cloud Access Manager can also broker for Remote Workstation Cards.

To Learn MoreVisit http://www.teradici.com/cloud-access-software

Teradici Corporation #300-4601 Canada Way, Burnaby, BC V5G 4X8 Canada phone +1.604.451.5800 fax +1.604.451.5818 www.teradici.com

The information contained in this documentation represents the current view of Teradici Corporation as of the date of publication. Because Teradici must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Teradici, and Teradici cannot guarantee the accuracy of any information presented after the date of publication.

This document is for informational purposes only. TERADICI MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS DOCUMENT.

Complying with all applicable copyright laws is the responsibility of the user. Without limiting the rights under copyright, no part of this document may be reproduced, stored in or introduced into a retrieval system, or transmitted in any form or by any means (electronic, mechanical, photocopying, recording, or otherwise), or for any purpose, without the express written permission of Teradici Corporation.

Teradici may have patents, patent applications, trademarks, copyrights, or other intellectual property rights covering subject matter in this document. Except as expressly provided in any written license agreement from Teradici, the furnishing of this document does not give you any license to these patents, trademarks, copyrights, or other intellectual property. Visit Notice about Intellectual Property Rights for more information.

© 2004-2019 Teradici Corporation. All rights reserved. WP-17-07-25-19

Teradici, PC-over-IP, and PCoIP are trademarks of Teradici Corporation and may be registered in the United States and/or other countries. Any other trademarks or registered trademarks mentioned in this release are the intellectual property of their respective owners